Resources for the Check Point Community, by the Check Point Community.

Tim Hall has done it again! He has just released the 2nd edition of "Max Power".Rather than get into details here, I urge you to check out this announcement post. It's a massive upgrade, and well worth checking out. -E

If this is your first visit, be sure to
check out the FAQ by clicking the
link above. You may have to register
before you can post: click the register link above to proceed. To start viewing messages,
select the forum that you want to visit from the selection below.

Re: NAT and Palo Alto

Originally Posted by cciesec2006

What you said is correct on both Palo Alto and Cisco ASA with a caveat: You can use "Any" but you need to associate a "zone" to it.

Right, and Security Zones are present in R80 management and can be used in NAT policies in this way. However Security Zones are not supported by pre-R80 gateways; without saying too much at this time I think it is pretty clear where Check Point's capabilities in this area are going...